angular icon indicating copy to clipboard operation
angular copied to clipboard

build: update all non-major dependencies

Open angular-robot opened this issue 3 years ago • 5 comments

This PR contains the following updates:

Package Type Update Change
@types/chrome dependencies patch ^0.0.190 -> ^0.0.193
@types/jquery devDependencies patch 3.5.1 -> 3.5.14
angular-route (source) dependencies patch 1.8.0 -> 1.8.3
io_bazel_rules_sass http_archive minor 1.50.0 -> 1.54.1
jasmine devDependencies minor ~4.2.0 -> ~4.3.0
jasmine-core devDependencies minor ~4.1.0 -> ~4.3.0
jasmine-core devDependencies minor ~4.2.0 -> ~4.3.0
karma dependencies minor ~6.3.0 -> ~6.4.0
karma devDependencies minor ~6.3.0 -> ~6.4.0
karma-jasmine devDependencies minor ~5.0.0 -> ~5.1.0
rollup (source) dependencies minor ~2.75.0 -> ~2.77.0
safevalues dependencies minor ^0.1.8 -> ^0.3.0
ts-node (source) devDependencies minor ~10.8.0 -> ~10.9.0
tsec devDependencies patch 0.2.5 -> 0.2.6
tsickle dependencies minor ^0.38.0 -> ^0.46.0

Release Notes

angular/angular.js

v1.8.3

Compare Source

One final release of AngularJS in order to update package README files on npm.

v1.8.2

Compare Source

Bug Fixes

  • $sceDelegate: ensure that resourceUrlWhitelist() is identical to trustedResourceUrlList() (e41f01, #​17090)

v1.8.1

Compare Source

Bug Fixes

  • $sanitize: do not trigger CSP alert/report in Firefox and Chrome (2fab3d)

Refactorings

  • SanitizeUriProvider: remove usages of whitelist (76738102)
  • httpProvider: remove usages of whitelist and blacklist (c953af6b)
  • sceDelegateProvider: remove usages of whitelist and blacklist (a206e267)

Deprecation Notices

For the purposes of backward compatibility, the previous symbols are aliased to their new symbol.

bazelbuild/rules_sass

v1.54.1

Compare Source

v1.54.0

Compare Source

v1.53.0

Compare Source

v1.52.3

Compare Source

v1.52.2

Compare Source

v1.52.1

Compare Source

v1.52.0

Compare Source

v1.51.0

Compare Source

v1.50.1

Compare Source

jasmine/jasmine-npm

v4.3.0

Compare Source

Please see the release notes.

jasmine/jasmine

v4.3.0

Compare Source

Please see the release notes.

v4.2.0

Compare Source

Please see the release notes.

karma-runner/karma

v6.4.0

Compare Source

Features
  • support SRI verification of link tags (dc51a2e)
  • support SRI verification of script tags (6a54b1c)

6.3.20 (2022-05-13)

Bug Fixes

6.3.19 (2022-04-19)

Bug Fixes
  • client: error out when opening a new tab fails (099b85e)

6.3.18 (2022-04-13)

Bug Fixes
  • deps: upgrade socket.io to v4.4.1 (52a30bb)

6.3.17 (2022-02-28)

Bug Fixes

6.3.16 (2022-02-10)

Bug Fixes
  • security: mitigate the "Open Redirect Vulnerability" (ff7edbb)

6.3.15 (2022-02-05)

Bug Fixes

6.3.14 (2022-02-05)

Bug Fixes
  • remove string template from client code (91d5acd)
  • warn when singleRun and autoWatch are false (69cfc76)
  • security: remove XSS vulnerability in returnUrl query param (839578c)

6.3.13 (2022-01-31)

Bug Fixes

6.3.12 (2022-01-24)

Bug Fixes
  • remove depreciation warning from log4js (41bed33)

6.3.11 (2022-01-13)

Bug Fixes
  • deps: pin colors package to 1.4.0 due to security vulnerability (a5219c5)

6.3.10 (2022-01-08)

Bug Fixes

6.3.9 (2021-11-16)

Bug Fixes

6.3.8 (2021-11-07)

Bug Fixes
  • reporter: warning if stack trace contains generated code invocation (4f23b14)

6.3.7 (2021-11-01)

Bug Fixes

6.3.6 (2021-10-25)

Bug Fixes

6.3.5 (2021-10-20)

Bug Fixes

6.3.4 (2021-06-14)

Bug Fixes

6.3.3 (2021-06-01)

Bug Fixes

6.3.2 (2021-03-29)

Bug Fixes

6.3.1 (2021-03-24)

Bug Fixes
karma-runner/karma-jasmine

v5.1.0

Compare Source

Features
  • spec-filter: allow custom specFilter (b73dbd6)

5.0.1 (2022-05-13)

Bug Fixes
rollup/rollup

v2.77.2

Compare Source

2022-07-27

Bug Fixes
  • Avoid a rendering failure when mixing outputs with inlined and non-inlined dynamic imports (#​4589)
Pull Requests

v2.77.1

Compare Source

2022-07-26

Bug Fixes
  • Ensure IIFE output generates a global variable when generating ES5 (#​4588)
Pull Requests

v2.77.0

Compare Source

2022-07-15

Features
  • Introduce maxParallelFileOps to limit both read and write operations, default to 20 and replaces maxParallelFileRead (#​4570)
Bug Fixes
  • Avoid including variables referenced from return statements that are never reached (#​4573)
Pull Requests

v2.76.0

Compare Source

2022-07-08

Features
  • Allow setting a sourcmapBaseUrl for absolute paths in sourcemaps (#​4527)
Bug Fixes
Pull Requests
TypeStrong/ts-node

v10.9.1

Compare Source

Fixed

  • Workaround nodejs bug introduced in 18.6.0 (#​1838) @​cspotcode
    • Only affects projects on node >=18.6.0 using --esm
    • Older versions of node and projects without --esm are unaffected

https://github.com/TypeStrong/ts-node/milestone/18?closed=1

v10.9.0

Compare Source

Added

Fixed

https://github.com/TypeStrong/ts-node/milestone/16?closed=1

google/tsec

v0.2.6

Compare Source

angular/tsickle

v0.46.3

Compare Source

v0.46.0

Compare Source

v0.43.0

Compare Source

v0.42.0

Compare Source

v0.41.0

Compare Source

v0.40.0

Compare Source

v0.39.1

Compare Source

v0.39.0

Compare Source


Configuration

📅 Schedule: Branch creation - "after 10:00pm on monday,before 04:00am on tuesday" in timezone America/Tijuana, Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

â™» Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • [ ] If you want to rebase/retry this PR, click this checkbox.

This PR has been generated by Renovate Bot.

angular-robot avatar Jul 05 '22 05:07 angular-robot

Blocked on the karma-jasmine update and zone.js fix I sent separately..

devversion avatar Jul 13 '22 14:07 devversion

The karma jasmine fix landed, rebasing..

devversion avatar Jul 18 '22 19:07 devversion

Now blocked on a change in rules_nodejs because the external ts_library and internal one have diverged too much. Definitely time to work on alternatives here as the internal one keeps diverging and it's not worth doing... cc. @josephperrott

https://github.com/bazelbuild/rules_nodejs/pull/3508

Note: There has been a similar "partial-sync" in rules_nodejs but it just implemented the tsconfig type definition, but not the corresponding Starlark change 😞 - https://github.com/bazelbuild/rules_nodejs/commit/5afaab8e1ce047b024339169a9073e46543bedad

devversion avatar Jul 25 '22 13:07 devversion

The rules_nodejs change is now available since Sunday: https://github.com/bazelbuild/rules_nodejs/commit/78a05281075c50ee31658bc48dd852e35b973496

devversion avatar Aug 02 '22 08:08 devversion

âš  Artifact update problem

Renovate failed to update artifacts related to this branch. You probably do not want to merge this PR as-is.

â™» Renovate will retry this branch, including artifacts, only when one of the following happens:

  • any of the package files in this branch needs updating, or
  • the branch becomes conflicted, or
  • you click the rebase/retry checkbox if found above, or
  • you rename this PR's title to start with "rebase!" to trigger it manually

The artifact failure details are included below:

File name: aio/tools/examples/shared/package.json
Command failed: yarn run sync-deps
error Command "sync-deps" not found.

File name: aio/tools/examples/shared/package.json
Command failed: yarn run sync-deps
error Command "sync-deps" not found.

File name: aio/tools/examples/shared/package.json
Command failed: yarn run sync-deps
error Command "sync-deps" not found.

File name: aio/tools/examples/shared/package.json
Command failed: yarn run sync-deps
error Command "sync-deps" not found.

File name: aio/tools/examples/shared/package.json
Command failed: yarn run sync-deps
error Command "sync-deps" not found.

File name: aio/tools/examples/shared/package.json
Command failed: yarn run sync-deps
error Command "sync-deps" not found.

angular-robot avatar Aug 03 '22 00:08 angular-robot

Blocked on https://github.com/google/safevalues/pull/190 / cl/465542098

devversion avatar Aug 05 '22 12:08 devversion

This PR was merged into the repository by commit 2548214ba230ae96a21b1fa02faa5f3a64a6536c.

dylhunn avatar Aug 08 '22 16:08 dylhunn

This issue has been automatically locked due to inactivity. Please file a new issue if you are encountering a similar or related problem.

Read more about our automatic conversation locking policy.

This action has been performed automatically by a bot.